Re: Outgoing IPSEC

From: Gaddis, Jeremy L. (jeremy_at_linuxwiz.net)
Date: 11/22/05

  • Next message: Pranav Lal: "Re: Hard drive encryption in windows"
    Date: Mon, 21 Nov 2005 20:21:27 -0500
    To: Securi Net <securinet2004@yahoo.ca>
    
    

    Securi Net wrote:
    > I have a contractor who works onsite within our
    > network and needs outgoing port 500 opened on our
    > firewall for him to vpn into his company network.
    >
    > Can anyone shed some light on what I shud be concerned
    > about here.

    If someone compromises the contractor's machine while he's connected to
    his company's network, they can then use his machine as a "stepping
    stone" into your network, since he's probably "inside the firewall" on
    your network.

    HTH,
    -j

    -- 
    Jeremy L. Gaddis, GCWN
    http://www.linuxwiz.net/
    "If it's not on fire, it's a software problem."
    

  • Next message: Pranav Lal: "Re: Hard drive encryption in windows"

    Relevant Pages

    • RE: can ping but not browse
      ... I have stopped the firewall. ... # are safed from all (security) hazards. ... firewall/bastion host to the internet ... # internet and to an internal network, ...
      (Fedora)
    • Re: Why not use NETBEUI on Windows XP ??
      ... Trusted zones means that firewall rules will be bypassed for any or certain ... not count on netbeui being a defense for such as long as smb connectivity ... while the connection is open. ... > Microsoft Networking components on my network. ...
      (microsoft.public.windowsxp.network_web)
    • Re: Why not use NETBEUI on Windows XP ??
      ... Trusted zones means that firewall rules will be bypassed for any or certain ... not count on netbeui being a defense for such as long as smb connectivity ... while the connection is open. ... > Microsoft Networking components on my network. ...
      (microsoft.public.win2000.networking)
    • Re: Simple Printer Sharing/Networking Question
      ... And all 3 desktop computers are running Windows XP Pro ... We have turned on sharing for the network printers (in association with this ... caused by 1) a misconfigured firewall or overlooked firewall (including ...
      (microsoft.public.windowsxp.network_web)
    • Re: Firewall for broadband connection
      ... A personal firewall application that runs on your computer will often be ... it clearly needs user intervention to apply updates. ... IP address, then VNC is a simple way to do ... I install VNC, even in a protected network, I always change the port ...
      (comp.security.firewalls)